header('Strict-Transport-Security: max-age=31536000; includeSubDomains'); header('X-Frame-Options: SAMEORIGIN'); header('X-Content-Type-Options: nosniff'); header('Referrer-Policy: strict-origin-when-cross-origin'); header('Permissions-Policy: camera=(), microphone=(), geolocation=(), interest-cohort=()'); header('Content-Security-Policy: default-src \'none\'; script-src \'none\'; style-src \'unsafe-inline\' \'self\'; font-src \'self\'; img-src \'self\'; connect-src \'none\'; frame-src \'none\'; object-src \'none\'; base-uri \'self\'; form-action \'none\''); ?>